SABnzbd 2.3.9 and 3.0.0Alpha2 has a command injection vulnerability in the web configuration interface that permits an authenticated user to execute arbitrary Python commands on the underlying operating system.
CPE | Name | Operator | Version |
---|---|---|---|
sabnzbd | eq | 3.0.0 alpha2 | |
sabnzbd | eq | 2.3.9 |